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Interval temporal logics provide a general framework for temporal reasoning about interval structures 
over linearly ordered domains, where intervals are taken as the primitive ontological entities. In 
this paper, we identify all fragments of Halpern and Shoham's interval temporal logic HS with a 
decidable satisfiability problem over the class of strongly discrete linear orders. We classify them in 
terms of both their relative expressive power and their complexity. We show that there are exactly 
44 expressively different decidable fragments, whose complexity ranges from NP to EXPSPACE. In 
addition, we identify some new undecidable fragments (all the remaining HS fragments were already 
known to be undecidable over strongly discrete linear orders). We conclude the paper by an analysis 
of the specific case of natural numbers, whose behavior slightly differs from that of the whole class 
of strongly discrete linear orders. The number of decidable fragments over N raises up to 47: three 
undecidable fragments become decidable with a non-primitive recursive complexity. 

1 Introduction 

Interval temporal logics provide a general framework for temporal reasoning about interval structures 
over linearly (or partially) ordered domains. They take time intervals as the primitive ontological entities 
and define truth of formulas relative to time intervals, rather than time points. Interval logic modalities 
correspond to various relations between pairs of intervals, with the exception of Venema's CDT and 
its fragments, that consider ternary relations |22|. In particular, Halpern and Shoham's modal logic of 
time intervals HS [15 ] features a set of modalities that makes it possible to express all Allen's interval 
relations lUl (see Table [Til. 

Interval-based formalisms have been extensively used in many areas of computer science, such as, 
for instance, planning, natural language processing, constraint satisfaction, and verification of hardware 
and software systems. However, most of them impose severe syntactic and semantic restrictions that 
considerably weaken their expressive power. Interval temporal logics relax these restrictions, allowing 
one to cope with much more complex application domains and scenarios. Unfortunately, many of them, 
including HS and the majority of its fragments, turn out to be undecidable |4|. 

In this paper, we focus our attention on the class of strongly discrete linear orders, that is, of those 
linear structures characterized by the presence of finitely many points in between any two points. This 
class includes, for instance, N, Z, and all finite linear orders. We give a complete classification of all 
HS fragments (defined by restricting the set of modalities), reviewing known results and solving open 
problems; the results differ, as we will see, from those in the class of all finite linearly ordered sets Q. 
The aim of such a classification is twofold: on the one hand, we identify the subset of all expressively- 
different decidable fragments, thus marking the decidability border; on the other hand, we determine 
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Table 1: Allen's interval relations and the corresponding HS modalities. 



the exact complexity of each of them. As shown in Figure [H AABB (that features modal operators 
for Allen's relations meets and started-by, and their inverses) and its mirror image AAEE (that replaces 
relations starts and started-by by relations finishes and finished-by) are the minimal fragments including 
all decidable subsets of operators from the HS repository, for a total of 62 languages. Of those, 44 turn 
out to be decidable. As a matter of fact, the status of various fragments was already known: (i) D, 
D, 0, and have been shown to be undecidable in |l6l[T6l; (ii) BE, BE, BE, and BE are undecidable, 
as they can define, respectively, (D) (by the equation (D)p = (B)(E)p), (O) ((0)p = (B)(E)p), (O) 
((0)p = (E)(B)p), and (D) ((D)p = (B)(E)p); (Hi) undecidability of AAB (resp., AAE) can be shown 
using the same technique used in |[T8l to prove the undecidability of AAB (resp., AAE); (iv) ABBL (resp., 
AEEL) is in EXPSPACE lHOl, and the proof of EXPSPACE-hardness for AB and AB (resp., AE and AE) 
over finite linear orders (T\ can be easily adapted to the case of strongly discrete linear orders; (v) AA 
(a.k.a. Propositional Neighborhood Logic) is in NEXPTIME [8, 13], and NEXPTlME-hardness already 
holds for A and A 191; (vi) BB is NP-complete [14], and, obviously, NP-hardness already holds for B 
and B (both include propositional logic); (vii) the relative expressive power of the HS fragments we are 
interested in is as shown in Figure [TJ whose soundness and completeness follow from the results given 
in [llj and in [7], respectively, as definability (resp., undefinability) results transfer from more (resp., 
less) general to less (resp., more) general classes. 

In this paper, we complete the picture by proving the following new results: (/) the undecidability 
of AAB (resp., AAE) and AAB (resp., AAE) can be sharpened to AB (resp., AE) and AB (resp., AE), 
respectively (Section 3); (//) the NP-completeness (in particular, NP-membership) of BB can be extended 
to BBLL (Sectionllll. In addition, we analyze the behavior of the various fragments over interesting sub- 
classes of the class of all strongly discrete linearly ordered sets, taking as an example that of models based 
on N (Section 6). As N-models are not left/right symmetric, reversing the time order and coherently 
replacing modalities (e.g., (A) by (A)) does not preserve, in general, the computational properties of a 
fragment. We show that: (/) AB becomes decidable (which is a direct consequence of |18 |), precisely, 
non-primitive recursive Q; (//) the same holds for AB and ABB, but, in these cases, the decidability 
proof for AABB given in |18l must be suitably adapted; ABL, ABL, and ABBL remain undecidable, 
but the original reductions must be suitably adapted. Thus, the number of decidable fragments over N 
raises up to 47, the three new decidable fragments being all non-primitive recursive. In fact, we can 
slightly generalize such a result, as the addition of finite linear orders (finite prefixes of N) to N does not 
alter the picture; however, to keep presentation and proofs as simple as possible, we restrict our attention 
to N-models only. Symmetric results can be obtained in the case of negative integers. 
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2 HS and its Fragments 

Let B = (D, <) be a strongly discrete linearly ordered set, that is, a linearly ordered set where for every 
pair X, y , with x < y , there exist at most finitely many zi , Z2, . . . , Zn such that x < Zi < Z2 < . . . < Zn < y ■ 
According to the strict approach, we exclude intervals with coincident endpoints (point-intervals) from 
the semantics: an interval over B is an ordered pair [x,y], with x,y G D and x < y. 

12 different ordering relations (plus equality) between any pair of intervals are possible, often called 
Allen's relations |[T1: the six relations depicted in Table [T] and their inverses. We interpret interval struc- 
tures as Kripke structures and Allen's relations as accessibility relations, thus associating a modality (X) 
with each Allen's relation Rx- For each modality (X), its inverse (or transpose), denoted by (X), cor- 
responds to the inverse relation R^- of Rx (that is, R^ = (Rx)^)- Halpern and Shoham's logic HS is a 
multi-modal logic whose formulas are built on a set of proposition letters, the boolean connectives 
V and and one modality for each Allen's relation. We associate a fragment X1X2 . . .Xi< of HS with 
every subset {Rx, , . . . , Rx^l of Allen's relations, whose formulas are defined by the following grammar: 

cp ::=p I -cp I cpVcp | (Xi)(p | ... | {X^^)(p. 

The other boolean connectives can be viewed as abbreviations, and the dual operators [X] are defined as 
usual ([X](p = -'(X)-'(p). Given a formula cp, its length |(p| is the number of its symbols. 

The semantics of HS is given in terms of interval models M = (1(B), V), where 1(B) is the set of 
all intervals over B. The valuation function V : i-> 2^^'^ '^ assigns to every p € A'y the set of intervals 
V(p) over which p holds. The truth of a formula over a given interval [x,y] of an interval model M is 
defined by structural induction on formulas: 

• M, [x,y] Ih p iff [x,y] G V(p), for all p G A^; 

• M, [x,y] Ih -^-^ iff it is not the case that M, [x,y] Ih ![); 

• M, [x,y] Ih cp Vi|; iff M, [x,y] Ih cp or M, [x,y] Ih y\>; 

• M, [x,y] Ih (X)i|; iff there exists an interval [x',y '] such that [x,y]Rx[x',y'] and M, [x',y'] Ih \|;, 
where Rx is the relation corresponding to (X). 

An HS -formula cj) is valid, denoted by I h cj), if it is true over every interval of every interval model. 

In this paper, we study expressiveness and computational complexity of HS fragments over the class 
of strongly discrete linear orders. Given a fragment 3" = X1X2 . . . X^ and a modality (X) , we write (X) G 3" 
if X G {Xi, . . . ,Xi<}. Given two fragments 3"i and 3'2, we write 9"i C if (X) G 3"i imphes (X) G 3"2> for 
every modality (X). 

Definition 1. We say that an HS modality (X) is definable in an HS fragment 3" if there exists a for- 
mula iKp) G 3' such that (X)p i|j(p) is valid, for any fixed proposition letter p. In such a case, the 
equivalence (X)p = t|j{p) is called an inter-definabihty equation for (X) in 3". 

Definition 2. Let 3~i and 3"2 be two HS fragments. We say that ( i) 3~2 is at least as expressive as 3"i 
(3^1 ^ 3^2) if every modality (X) G is definable in 3^2! (H) 3"i is strictly less expressive than 3^2, 
(3^\_ ^ 3^2) if 3^1 ^ 3^2, but not 3^2 ^ (Hi) 9"i <^nd 3^2 <^re equally expressive, or expressively equivalent 
(3^1 = 3^2)> if 3^1 ^ 3^2 and 3^2 ^ (iv) 9~i (ind 3^2 (ire expressively incomparable (3^\_^ 3^2) if neither 
3"i < 3^2 nor 3^2 < 3^1. 

We denote each HS fragment 3~ by the list of its modalities in alphabetical order, omitting those 
modalities which are definable in terms of the others. As a matter of fact, in our setting, only (L) and (L) 
turn out to be definable in some fragments. Any fragment 3" can be transformed into its mirror image by 
reversing the time order and simultaneously replacing (each occurrence of) (A) by (A), (L) by (L), (B) 
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Figure 1: Hasse diagram of fragments of AABB and AAEE over strongly discrete linear orders. 



by (E), and (B) by (E). In the considered class of linear orders, the mirroring operation can be applied 
to any fragment preserving all its computational properties. Thus, all results given in this paper, except 
for the ones in Section 6, hold both for the considered fragments and their mirror images. When the 
considered class of models is not left/right symmetric, as it happens with N (Section 6), this is no longer 
true. The rest of the paper, with the exception of Section 6, is devoted to prove the following theorem. 

Theorem 1. The Hasse diagram in Figure\J\correctly shows all the decidable fragments o/HS over the 
class of strongly discrete linear orders, their relative expressive power, and the precise complexity class 
of their satisfiability problem. 



3 Relative Expressive Power and Undecidability 

The most basic definability results in HS, e.g., HS = AABBEE, are known since ifTSll . In order to show 
that a given modality is not definable in a specific HS fragment, we make use of the standard notion 
of bisimulation and the invariance of modal formulas with respect to bisimulations (see, e.g., [2]). In 
particular, we exploit the fact that, given a modal logic 3", any 3"-bisimulation preserves the truth of all 
formulas in 3". Thus, in order to prove that a modality (X) is not definable in 3", it suffices to construct 
a pair of interval models M and M' and an 3"-bisimulation between them that relates a pair of intervals 
[x,y] e Mand [x',y'] e M' such that M,[x,y] Ih (X)p and M',[x',y'] f (X)p. 

In the following, in order to prove that Figure [T] is sound and complete for the class of all strongly 
discrete linear orders, we focus our attention on fragments of AABB and of its mirror image AAEE, and 
we show that the set of nodes of the graph in Figure [T] is the set of all expressively different fragments 
of AABB and AAEE (including AABB and AAEE themselves). Nodes are partitioned with respect to the 
complexity of their satisfiability problem: nodes corresponding to undecidable fragments are identified 
by a red rectangle and by the superscript 1, while nodes corresponding to EXPSPACE-complete (resp., 
NEXPTIME-complete, NP-complete) fragments are identified by a yellow rectangle and the superscript 
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2 (resp., blue rectangle/superscript 3, green rectangle/superscript 4). All HS fragments that do not appear 
in the picture are undecidable. Graph edges represent the relative expressive power of two fragments: 
if two nodes, labeled by the fragments 3"i and 9~2, are connected by a path going from 3~i to 3~2, then 
3^2 ^ 9^1 ; if two fragments 3"i and 3"2 are not connected by a path, then ^3^2- Thus, to show that 
FiguredJis sound and complete, we need to prove that ( i) each fragment 3"i connected to a fragment 3~2 by 
an arrow is strictly more expressive than 3^2', (H) pairs of fragments in Figure [T] which are not connected 
by a path, are expressively incomparable; and (Hi) the complexity of the satisfiability problem for the 
considered fragments is correctly depicted in Figure [T] Conditions ( i) and ( ii) are direct consequences 
of the following lemma, whose proof, given in [V], makes use of bisimulations based on finite linearly 
ordered sets. As the class of all strongly discrete linearly ordered sets includes that of finite linearly 
ordered sets, all results immediately apply. 

Lemma 1 (CI). The only definability equations for the HSfi'agment AABB, over the class of all strongly 
discrete linear orders, are (L)p = (A) (A)p and (L)p = (A) (A)p. 

Hence, we can restrict our attention to condition (Hi). The rest of the section is devoted to prove the 
undecidability of all fragments marked as undecidable in Figure [T] All fragments which are not referred 
to in the figure have already been proved undecidable over the class of strongly discrete linearly ordered 
sets ||6l[l6l. All decidable fragments of HS over the class of strongly discrete linear orders are thus 
depicted in Figure [T] Section |4] and [5] will be devoted to the identification of the exact complexity of 
these decidable fragments. 

The undecidability result we give here resembles those in QlUl. Nevertheless, the required mod- 
ifications are far from being trivial. From ifTSl 1201 . we know that there exists a reduction from the 
structural termination problem for lossy counter automata, which is known to be undecidable [17], to the 
satisfiability problem for AAB and AAB. Here, we consider the nonemptiness problem for incrementing 
counter automata over infinite words, which is known to be undecidable |[T2l . and we show that it can be 
reduced to the satisfiability problem for the fragments AB, AB, AE, and AE. For the sake of brevity, we 
will work out all the details of the reduction for AE only. Since AE and AB are completely symmetric 
with respect to the class of strongly discrete lineaiiy ordered sets, the reduction for AE basically works 
for AB as well. Moreover, adapting it to AE (and therefore, by symmetry, to AB) is straightforward. 
Incrementing counter automata can be viewed as a variant of lossy counter automata where faulty tran- 
sitions increase the values of counters instead of decrementing them. Hence, some of the basic concepts 
of the reduction given in lITSl l20l can be exploited. A comprehensive survey on faulty machines and 
on the relevant complexity, decidability, and undecidability results can be found in IS. Formally, an 
incrementing counter automaton is a tuple A = (L,Q,qo, C,A, F), where Z is a finite alphabet, Q is a 
finite set of control states, qo G Q is the initial state, C = {ci , . . . , Cid is the set of counters, whose values 
range over N, A is a transition relation, and F C Q is the set of final states. Let us denote by e the 
empty word (we assume e Z). The relation A is a subset of Q x (1 U{e}) x L x Q, where L is the 
instruction set L = {inc, dec,ifz} x {1,. . . ,k}. A configuration of A is a pair (q,v), where q G Q and 
V is the vector of counter values. A run of an incrementing counter automaton is an infinite sequence 
of configurations such that, for every pair of consecutive configurations (q,v), (q',v') an incrementing 

transition (q,v] (q',v') has been taken. We say that (q,v) [q' ,v'] has been taken if there ex- 
ist v-t-,v| such that V ^ v-j-, (q,v.|-) -'^ (q',v|), and v| ^ v', where (q,v) -'^ (q',v') iff (q,a,l,q') G A 
and if I = (mc,i) (resp., (dec,!), (ifz,i)), then v( = Vi + 1 (resp., v( = Vi — 1, v{ = vt = 0) (the order- 
ing V ^ v' is defined component-wise in the obvious way). Notice that once an incrementing transition 

(q,v) (q',v') has been taken, counter values may have been increased nondeterministically before 
or after the execution of the basic transition (q,v) (q',v') by an arbitrary natural number. We say 
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Figure 2: Encoding of a configuration of an incrementing counter automaton in AE. 



tliat an infinite run of A over an cu-word w S Z'" is accepting iff it traverses a state in F infinitely often. 
The nonemptiness problem for increasing counter automata is the problem of deciding whether there 
exists at least one cu-word accepted by it. In Section 6, we will show that when we restrict our attention 
to N-models, the situation becomes slightly different, as symmetry does not hold anymore. 
Lemma 2. There exists a reduction from the nonemptiness problem for incrementing counter automata 
over w-words to the satisfiability problem for AE over the class of strongly discrete linear orders. 

Proof. Let A = [L, Q, qo, C, A,F) be an incrementing counter automaton. We write an AE formula cp^i 
which is satisfiable over the class of strongly discrete linear orders iff there is at least one tu-word over 
L accepted by A. Let us assume that |Q| = \x+ 1, |Z| = "v, |F| = r|, and |C| = k, and there are (i) \x+ 1 
proposition letters qo, qi, . . . , q^, one for each state in Q (qo being the initial state); (ii) y proposition 
letters ai , . . . , , one for each symbol in Z; and ( Hi) k proposition letters Ci , . . . , c^, one for each counter 
in C. Moreover, to simplify the formula, we introduce a proposition letter $q (resp., $a, $c) which holds 
at some interval iff at least one q^ (resp., Ui, Ci) holds at that interval. Finally, a proposition letter conf 
is used to denote a configuration. Additional auxiliary proposition letters will be introduced later on. 

To encode the components of a configuration, we use intervals of the form [x,x+ 1] (unit intervals), 
which are univocally identified by the AE formula [E]_L. A configuration is modeled by a (non-unit) 
interval [x,x + s], labeled with conf, consisting of a sequence of unit intervals labeled as follows: [x,x + 
1] is labeled with (a proposition letter for) a state in Q, [x + l,x + 2] by a letter in L, and all the remaining 
unit intervals, but the last one (for technical reasons, [x + s — l,x + s] is labeled with a special proposition 
letter $b), are labeled with counters in C. Figure [2] depicts (part of) the encoding of a configuration. We 
constrain any configuration interval [x, x + s] to contain one unit interval labeled with a state, one labeled 
with an alphabet letter, and, for 1 ^ 1 ^ k, as many unit intervals labeled with Ci as the value of counter 
Ci is in that configuration. Without loss of generality, we can assume all counter values to be initialized 
to (v = 0), and thus the initial configuration contains no counter proposition letters. 

Let [U] (p be a shorthand for the formula [U] cp = cp A [A] cp A [A] [A] cp (universal modality). We first 
constrain proposition letters that denote states (in Q), input symbols (in Z), and counter values to be 
correctly placed. 

V k 

[U]($q o \J qt A$a ^ \J at A$c ^ \J Ci) placeholders are correctly set (1) 

i=0 i=l i=l 

[U]([E]_L -f-)- $q V$aV$c V$b) placeholders are unit intervals (2) 

[U] A ($p ^ \/ $p') exactly one placeholder per unit 

' ^ * interval 

pe{q,a,c,b} p'e{q,a,c,b},p'/P 
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exactly one state, letter, counter (4) 



(A)(confA(E)(E)TA[E][E][E]±) 
[U](conf ^ (A)conf A(E)(E)T) 
[U] ((conf ^ [E]conf ') A (conf ' - 



-'conf)) 



t^j t^j i^] 

Next, we encode the sequence of configurations as a (unique) infinite chain that starts at the ending point 
of the interval where cp^ is evaluated, and we constrain the counter values of the initial configuration 
to be equal to 0. To force such a chain to be unique and to prevent configurations from containing or 
overlapping other configurations, we introduce an additional proposition letter conf, which holds over 
all and only those intervals which are suffixes of a conf -interval. 

the initial configuration has 
two internal points only 
a chain ofconis; each conf 
has room for state and letter 
conf^ are ended by conf 
which are not conf 
conf neither overlap nor 
[U] (((A)conf ' -'Conf ) A (conf' (A)conf A-'(E)conf )) contain other conis; conf 

end conf* 

Now, we force configurations to be properly structured: they must start with a unit interval labeled with 
a state (the initial configuration with qo), followed by a unit interval labeled with an input letter, possibly 
followed by a number of unit intervals labeled with counters, followed by a last unit interval labeled with 
$b. As modalities (A) and (E) do not allow one, in general, to refer to the subintervals of a given interval, 
a little technical detour is necessary. We introduce the auxihary proposition letters confq, conf a, and 
confer (one for each type of counter), and we label the suffix of a configuration interval met by a unit 
interval labeled with $q (resp., $a, Ci) with confq (resp., conf a, confc^). In such a way, modality (E) 
can be exploited to get an indirect access to the components of a configuration. As an example, we use 
it to force every configuration to include at most one state and one input letter. Notice that proposition 
letter $b plays an essential role here: it allows us to associate the last Ci of each configuration with the 
corresponding confc^. 



(5) 



(6) 



(7) 



(8) 



(A)qoA[U]((A)conf o (A)$q) 
[U]{($q ^ (A)$a) A{$aV$c ^ (A)($cV$b)) A($b • 
[U](($q [A](conf' ^confq))A($a-)- [A](conf' 
[U]{-(conf q A (E)conf q ) A-(conf a A (E)conf a)) 

k 

[U] ( /\ (Ci ^ [A] (conf ^ conf c, ] ) ] 



(A)$q)) 
confa))) 



conf starts with state 
(the initial one with qoj 
conf is properly struc- 
tured 

$q meets confq, $a 
meets confa 
at most one state and 
one letter per conf 

Ci meets confc. 



(9) 
(10) 
(11) 
(12) 

(13) 



To model decrements and increments, auxiliary proposition letters CdecCnew, conf dec and confnew 
are introduced. Cdec» which labels at most one unit interval ci of a given configuration, constrains the 
value of the i-th counter to be decremented by 1 by the next transition, provided that A contains such a 
transition. Similarly, we constrain Cnew to label a (unique) unit interval c^ added by the last transition to 
represent an increment by 1 of the value of the i-th counter, provided that A contains such a transition. 



[U]( /\ (c;-)-($cA[A](conf'^conf;)))) 



ifcx, then conf; 



(14) 



lG{new,dec} 
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[U]( /\ (([E]±A(A)confO ^cO) if conh, then Ci (15) 

lG{Tiew,dec} 

[U](-(confdec A(E)confdec) A^(confnew A(E)confnew)) ^^f^ost one confi per ^^^^ 

COTLT 

To constrain the values that counters may assume in consecutive configurations, we introduce three 
auxiliary proposition letters corr, corr', and corVt-onf- To model the faulty behavior of A, that can 
increment, but not decrement, the values of counters non-deterministically, we allow two corr-intervals 
to start, but not to end, at the same point. 

r,,,,,, , new counters have not a counterpart in 

[A] A Cnew ^ - E corr • . f (17 

previous conf 

r, n,/^ ^, ^ r,n ^ OS, OS, and dcc countcrs havc not a coun- 

U $qV$aVcdecW Abcorr , '• , . (18 

terpart in next cord 

nnr,(f A 1 1 1\\ -\ non dec counters have a counterpart in ^.^.x 

[U](($cA-Cdec) ^ (A)corr) ^ (19) 

next cont 

[U](([E]± A (A)corr) — ^ $c) corr are met by a counter (20) 

[U]((corr — )- [E]corr A(A)$c)A corr^ are ended by corr'^ and meet a ^2^) 

A ({A)conf [A](corr' corrconf ))) counter, some corr' s are corrconf^ 

[l-l](~'(corrcoTi^f A(E)corrcon.f)/\ corr connects counters of consecutive ^22) 

A(corr — > (E)corrcoTLf)) conf 
[U]((A)corrconf — (A)conf) corrconf ^^'g^'^'^' conf (23) 

k 

[U](yy (Ci — )• [A](corr — > (A)ci))) each corr corresponds to some counter (24) 

1=1 

[U]^(corr A (E)corr) no corr ends corr (25) 

Finally, we constrain consecutive configurations to be related by some transition ( q , a, 1, q ' ) in A. 

V ((A)(qA(A)a)A(A)(confA(A)q'A (tnc,i) (26) 

(q,a,(iTLC,i),q')eA (A)[C0nf A (E/fCOnfc^ AconfnewJJj) 

V ((A)(qA(A)a)A(A)(confA(A)q'A instruction [^c,^) ill) 

(q,a,(dec,i),q')eA (E) (conf A COnf ^ec J j) 

\l ((A)(qA(A)a)A(A)(conf A(A)q' A[E]-confcJ) instruction [iiz,i) (28) 

(q,a,(ifz,i],q')eA 

[U] ( ( A) conf ^ ( JH V (El V (El ) ) an instruction (29) 

We define as the conjunction of all above formulas paired with the condition that the infinite com- 
putation passes through a final state infinitely often. 

(pyi= OA... A (EH) A (EH) A [A] (A) (A) \/ qf 

qf eF 

It is straightforward to prove that cp^i is satisfiable iff A accepts at least one cu-word. □ 
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4 NP- Completeness 

In this section, we prove tliat NP-completeness of BB |[T4]| can be extended to BBLL. Since the satisfi- 
abihty problem for propositional logic is NP-complete, every proper fragment of BBLL including it is 
at least NP-hard. Unlike the rest of the sections, the core of this one is a membership proof, namely, a 
proof of NP-membership: by a model-theoretic argument, it shows that satisfiability of a BBLL-formula 
cp can be reduced to its satisfiability in a periodic model where the lengths of prefixes and periods have 
a bound which is polynomial in |(p|. 

For the sake of simplicity, we consider the case of BBLL interpreted over N. The proof can be gen- 
eralized to the whole class of strongly discrete linear orders. Moreover, it can be shown that satisfiability 
of a BBLL-formula cp over N can be reduced to satisfiability of the formula T((p) = (L)(L)(p over the 
interval [0,1], that is, M, [x,y] Ih cp for some [x,y] if and only M, [0, 1] Ih T((p). Thus, we can safely 
restrict our attention to the problem of satisfiability over [0, 1] {initial satisfiability). As a preliminary 
step, we introduce some useful notation and notions, including that of periodic model. 

Definition 3. An interval model M = (I(N), V) is ultimately periodic, with prefix Pre and period Per, 

if for every interval [x,t)] € I(N) and proposition letter p G A'S', (i) if Pre, then [x,y] € V(p] iff 
[x + Per,-y + Per] e V(p] and (ii) ify ^ Pre, then [x,y] e V(p) iff[x,y + ?er] G V(p). 

Let us consider a BBLL-formula (p. We define Cl((p) as the set of all subformulas of cp and of 
their negations. Let M be a model such that M, [0, 1] Ih cp. For every point x of the model, let 3i]_(x) 
(resp., 3?-j-(x)) be the maximal subset of Cl((p) consisting of all and only those (L)-formulas (resp., 
(L) -formulas) and their negations that are satisfied over intervals ending (resp., beginning) at xlJ. Let 
Jl[x) = Ol]_[x) U%^{x). Jl[x] must be consistent, that is, it cannot contain a formula and its negation. 
Let 3? be the subset of Cl((p) that contains all possible (L)- and (L)-formulas. It is immediate to see 
that ^ 2|(p|. In the following, we will also compare intervals with respect to satisfiability of (B)- and 
(B)-formulas. Given a model M, we say that two intervals [x,ij] and [x',y'] are B-equivalent (denoted 
[x,y] =B W,V']) if for every (B)-il; G CUcp), M,[x,y] Ih (B)il; iff M,[x',y'] Ih (B)i1j and for every 
(B)i|; G CUcp), M, [x,y] Ih (B)il; iff M, [x',y '] Ih (B)i|;. We denote by me the number of (B)- and (B)- 
formulas in Cl((p). To prove that the satisfiability problem for BBLL is in NP, we first prove that every 
satisfiable formula (p has an ultimately periodic model, and then we show how to possibly contract such 
a model to obtain a model whose prefix and period are polynomial in |(p|. 

Lemma 3. Let (p be a BBLL-formula and M = (I(N), V) be such that M, [0, 1] Ih cp. Then, there exists 
an ultimately periodic model M* = (I(N),V*) that satisfies cp. 

Proof. Let M = (I(N), V) be such that M, [0, 1] Ih cp. If M is not ultimately periodic, we turn it into 
an ultimately periodic model as follows. First, by transitivity of (L) and (L), there must exist a point 
X > 1 such that 3?(y) = 3i(x) for every y ^ x. We take x as the prefix Pre. Then, we take as the period 
of the model a value Per > ras that satisfies the following conditions: (i) for every point x ^ Pre and 
formula (L)\|; G 3?(x], there exists an interval [xt),,yt),] such that M, [x^,ya|,] Ih ^\) and x < Xt|, < y^|, < 
Pre + Per; (ii) for every interval [x,y] such that x < Pre and y ^ Pre + Per and every formula (B)i[) 
such that M, [x,y] Ih (B)i|), there exists an interval [x,y^] such that [x,y] =b [x,yTj,], M, [x,yTj,] Ih \\), and 
Pre ^ y^|; < Pre + Per. The existence of such a Per is guaranteed by transitivity of (B) and (B). To force 
the model to be periodic, the following additional condition is necessary: (Hi) for every interval [x,y] 
such that Pre ^ x < Pre + Per and y ^ Pre + 2Per and every formula (B)i|) such that M, [x,y] Ih (B)\|;, 

'it is easy to see that all intervals ending (resp., beginning) at the same point satisfy the same (L)-formulas (resp., (L)- 
formulas). 
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there exists an interval [x,y^] such that [x,y] =b [x,!)^,], M, [x,yij,] Ih ij;, and < Pre + 2Per. If 
this is not the case, we can change the valuation V to force condition (Hi) to be satisfied as follows. 
Let [x,y] be an interval that does not satisfy condition (Hi). We choose a finite set of "witness points" 
{y 1 < . . . < y k} such that (a) for every interval [x,y '] and every formula (B)\|;, if M, [x,y '] Ih (B)\|;, then 
there exists a witness point x < yt < y ' such that M, [x,yi] Ih and (b) for every interval [x,y "] and 
every formula (B)9, if M, [x,y "] Ih (B)9, then there exists a witness point y, such that M, [x,yj] Ih t[) 
and either yj >y" or [x,yj] =b [x,y"]. By transitivity of (B) and (B), it follows that the number of 
witness points is less than or equal to rae (the number of (B)- and (B)-formulas in Cl((p)). 

We concentrate our attention on those witness points {yj < . . . < y id that are greater than Pre + Per, 
and we turn V into a new valuation V such that all intervals starting at x fulfills condition ( Hi) as follows: 
(1) for every p G Ay and every x < y' ^ Pre + Per, we put [x,y'] G V'(p) iff [x,y'] G V(p); (2) for 
every p G A"? and every j ^ t ^ k, we put [x, Pre + Per + i] G V'(p) iff [x,yi] G V(p); (3) for every 
p G AT and every Pre + Per + k < y' ^ yic, we put [x,y'] G V'(p) iff [x,yk] G V(p); (4) the valuation 
of all other intervals remains unchanged. Once such a rewriting has been completed, no other interval 
[x,y '] starting at x can falsify property ( Hi). By repeating such a procedure a sufficient number of times, 
we obtain a model for cp that satisfies all the required properties (notice that properties (1) and (2) are 
not affected by the rewriting). 

The ultimately periodic model M* = (I(N), V*) can be built as follows. First, we define the valuation 
function V* for some intervals in the prefix and some intervals in the first occurrence of the period: fi j for 
every p G AT and every [x,y] such that y < Pre + Per, [x,y] G V*(p) iff [x,y] G V'(p); (2) for every 
p G yiCP and every [x,y] such that Pre ^ x < Pre + Per and y s^x+Per, [x,y] G V*(p) iff [x,y] GV'(p). 
Then, we extend V* to cover the entire model: fij for every p G A"? and every [x,y] such that x < Pre 
andy ^ Pre + Per, [x,y] G V*(p) iff [x,y — Per] G V*(p); (2) for every p G /ICP and every [x,y] such that 
Pre ^ X < Pre + Per andy >x + Per, [x,y] G V*(p) iff [x,y — Per] G V*(p); (3) for every p G AT and 
every [x,y] such that x ^ Pre + Per, [x,y] G V* (p) iff [x — Per,y — Per] G V* (p). It is straightforward 
to prove that M*, [0, 1] Ih cp, and thus M* is the ultimately periodic model we were looking for. □ 

By applying a point-elimination technique similar to the one used in Q to show NP-membership of 
BBLL over finite linear orders, we can reduce the length of the prefix and the period of an ultimately 
periodic model to a size polynomial in |(p|, as proved by the following lemma. 

Lemma 4. Let (p be a BBLL-formula. Then, (p is initially satisfiable over N ijf it is initially satisfiable 
over an ultimately periodic model M = (I(N), V), with prefix Pre and period Per, such that Pre + Per ^ 
(raL + 2) • raB + raL + 4, where m.\_ = 2|3?|. 

Proof. By Lemma[3j we can assume that cp is initially satisfied over an ultimately periodic model M = 
(I(N),V). If Pre + Per > (raL + 2) - raB + mL +4, then we proceed as follows. 

Let us consider all points 1 < x < Pre + 2Per. For each \|; G Cl((p) such that (L)\[) G 3i(x) for some x 
in such a set, we select 1 < x^ax ^ Pre + Per andy^ax < Pre + 2Per such that [x^Qx,ymax] satisfies 
\[) and for each x^ii^Qx < x ^ Pre + Per no interval starting at x satisfies \[). We collect all such points into 
a set (of L-blocked points) BIl C {0, . . . , Pre + 2Per}. Then, for each t|; G CUcp) such that (L)il; G 3?(x) 
for some 1 < x < Pre + 2Per, we select an interval [x^|^,y^|^] that satisfies ij; and such that for each 
y < y^i^ no interval ending at y satisfies it. We collect all points 'X-^in^Vmi-n ^^^'^ ^ L-blocked 
points) Bl-L C {0, . . . , Pre}. Let Bl = BIl U Bl-^ U {Pre, Pre + Per}. We have that |B1| ^ raL + 2. Now, 
let us assume Bl = {xi < X2 < . . . < Xn}. For each < i < n, let Bli = {x|xi < x < xt+i}; similarly, 
let Bio = {'^lO < X < xi} and Bl^ = {x|xn < x < Pre + 2Per}. We prove that if y ,y ' G Bit, for some 
i, then 3?(y) = 3?(y')- The proof is by contradiction. Let us assume 3?(y) ^ 3?(y')- Since 3?(x) is the 
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same for all points x > Pre (it immediately follows from periodicity), at least one between y and y ' 
must belong to the prefix of M. If (L)i|; e 3i(y) and (L)-i|; 3?(y '), then, by definition, \V\■^^\l G 3?(y 
This implies that y < y', as (L) is transitive. It immediately follows that y < Pre. Let us consider 
now the above-defined interval [xmax.ymax]- Two cases may arise: either Xmax < y or x^I^qx > y'- 
In the former case, since (L)\|; G 3?(y), there must exist an interval [x",y"] satisfying tJj and such that 
^max < 'X'" ^ thus violating the definition of x^qx. In the latter case, [L]-'\[) 3?(y')> against the 
hypothesis. The case in which (L)\[) € 3i(y) and (L)\[) ^ 3i(y ') can be proved in a similar way. Since by 
assumption Pre + Per > (mL + 2) ■ ms + trl + 4, by a simple combinatorial argument there must exist 
^i+i Pre + Per) in Bl such that |Bli| > me. Let x be the smallest point in Bli. We show that we can 
build a model M' = (]I(N\{x}), V), where x has been removed and V is a suitable adaptation of V, 
such that M',[0,1] Ih cp. 

Let M" = (I(N\{x}), V"), where V" is the projection of V over the intervals that neither start nor 
end at x. By definition, replacing M by M" does not affect satisfaction of box-formulas (from Cl((p]). 
The only possible problem is the presence of some diamond-formulas which were satisfied in M and 
are not satisfied anymore in M". Let [x,y], with y < x, be such that M, [x,y] Ih (L)\|;. By definition 
of Bl, there exists an interval [x$Lax,ymax], with x^ax.ymax G Bl and xSlqx ^ Pre + Per, such that 
^\> holds over [x^^x.^max] and there exists no interval [x',y'], with x^qx < x' ^ Pre + Per, such 
that t[) holds over [x',y ']. It follows that either x^ax > U or there exists an interval [x',y '] such that 
M, [x',y '] Ih i[> and x' > Pre + Per. Therefore, M", [x,y] Ih (L)i|). A symmetric argument applies to the 
case of {L)i|;. Hence, the removal of point x does not cause any problem with diamond-formulas of the 
forms (L)i) or (L)^. Assume now that, for some y < x < x (resp., y < x < x) and some formula (B)t[) 
(resp., (B)\|;) in Cl((p), it is the case that M, [y,x] Ih (B)\|; (resp., M, [y,x] Ih (B)\|;) and that [y,x] was 
the only interval starting at y (in M) satisfying \|;. Since x is the smallest point in Bli, M, [y ,xi] Ih (B)i[) 
(resp., M, [y,xt+i] Ih (B)\[)) by transitivity of (B) (resp., (B)). Consider now the first me successors of 
x: x + l,...,x + mB. Since |Bl|| > me, we have that all those points belong to Bl|. It is possible to 
prove that there exists a point among them, say, x + k, that satisfies the following properties: (i) for every 
(B)£, G Cl((p), if M, [y_Jc + k+ 1] Ih (B)£„ then IVU [y,x + k] Ih (B)£„ and (ii) for every (B)C € CUcp), 
if M,[y,x + k- 1] Ih (B)C, then M,[y,x + k] Ih (B)C To prove it, it suffices to observe that, by the 
transitivity of (B), if M, [y,x + k+ 1] Ih (B)f, then M, [y,x'] Ih (B)£, for every x' ^ x + k+ 1. Hence, if 
X -j- k does not satisfy property ( i) for all its successors are forced to satisfy it for Symmetrically, 
by the transitivity of (B), if M, [y,x + k- 1] Ih (B)C, but M, [y,x + k] 1/ (B)C, then M, [y,x'] 1/ (B)C 
for every x' ^ x + k. Hence, all successors of x + k trivially satisfy property (ii) for C- Since the 
number of (B)- and (B)-formulas is limited by m^, a point with the required properties can always be 
found. We fix the defect by defining the labeling V as follows: we put [y,x + li] € V'(p) if and only if 
[y,x + h.— 1] G V(p), for every proposition letter p and 1 ^ t ^ h. The labeling of the other intervals 
remain unchanged. By definition of Bl, it follows that this change in the labeling does not introduce any 
new defect. 

By iterating the above-described operation, we obtain an interval model M = (I(N),V), with Pre + 
Per ^ (mL + 2] ■ me + mL +4. However, since all changes that we did so far are limited to the portion 
of the model in between and Pre + 2Per, we are not guaranteed that M is actually a model for cp. 
To turn it into a model for cp, we must propagate the changes to the rest of the interval model. We 
proceed as in the proof of Lemma[3l building an ultimately periodic model M* = (I(N), V*) as follows: 
(i) for every p G and every [x,y] such that y ^ Pre + Per, [x,y] G V*(p) iff [x,y] G V(p); (ii) for 
every p G AT and every [x,y] such that Pre < x ^ Pre + Per and y ^ x + Per, [x,y] G V*(p) iff 
[x,y] G V(p); (Hi) for every p G AT and every [x,y] such that x ^ Pre and y > Pre + Per, [x,y] G V*(p) 
iff [x,y — Per] G V*(p); (iv) for every p G AT and every [x,y] such that Pre < x ^ Pre + Per and 
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y > X + Per, [x,y] G V* (p) iff [x,y — Per] G V* (p); (v) for every p G yiT and every [x,y] such that 
Pre + Per, [x,y] G V*(p) iff [x — Per, y — Per] G V*(p). This concludes the proof. □ 

5 NEXPTIME- and EXPSPACE-Completeness 

The cases of NEXPTlME-complete and EXPSPACE-complete fragments have been already fully worked 
out. In the following, we briefly summarize them. NEXPTIME-membership of AA has been proved 
in f5l, while NEXPTIME-hardness of A over N has been shown in |9|. It is immediate to show that 
the latter result holds also for the class of strongly discrete linear orders; moreover, it can be easily 
adapted to the case of A, thus proving NEXPTIME-hardness of any HS fragment featuring (A) or 
(A). As for EXPSPACE-complete fragments, we know from IM that ABBL is EXPSPACE-complete. 
In |[T9]| , Montanari et al. prove EXPSPACE-hardness of the fragment AB over N by a reduction from 
the exponential-corridor tiling problem, which is known to be EXPSPACE-complete [21] . The reduction 
immediately applies to the case of strongly discrete linear orders. Moreover, it can be easily adapted to 
the fragment AB (a similar adaptation has been provided for finite hnear orders in |T|). Given a tuple 
T= (T,tx,tT,H, V,n], where T is a finite set of tile types, G T is the bottom tile, ty G T is the top 
tile, H and V are two binary relations over T, that specify the horizontal and vertical constraints, and 
n G N, the exponential-corridor tiling problem consists of deciding whether there exists a tiling function 
f from a discrete corridor of height exponential in n to T that associates the tile (resp., ty) with the 
bottom (resp., top) row of the corridor and that satisfies the horizontal and vertical constraints H and 
V. The reduction exploits the correspondence between the points inside the corridor and the intervals of 
the model. It makes use of |T| proposition letters to represent the tiling function f ; moreover, a binary 
encoding of each row of the corridor is provided by means of additional proposition letters; finally, local 
constrains on the tiling function f are enforced by using modalities. 

6 Decidability and Complexity over N 

As we already pointed, the asymmetry of N-models, which are left-bounded and right-unbounded, is 
reflected in the computational behavior of (some of) the fragments of AABB and its mirror image AAEE. 
More precisely: (i) AB, but not AE, becomes decidable (non-primitive recursive) fTSl; (ii) AB and ABB, 
but not AE nor AEE, become decidable (this can be shown by a suitable adaptation of the argument given 
in ifTSl ); (Hi) ABL and ABL remain undecidable, but the proof given in lITSl must be suitably adapted. 

Theorem 2. The Hasse diagram in Figure\3\correctly shows all the decidable fragments o/HS over N, 
their relative expressive power, and the precise complexity class of their satisfiability problem. 

The main ingredients of the decidability proof for ABB (and thus for AB and AB) can be summarized 
as follows. Let cp be a satisfiable ABB-formula and let M = (I(N), V) be a model such that M, [x^p ,y <p] Ih 
cp for some interval [X(p,t)(p]. It can be easily checked that modalities (A), (B), and (B) do not allow one 
to access any interval [x,y], with x > x<p, starting from [X(p,ij(p], and thus valuation over such intervals 
can be safely ignored. By exploiting such a limitation, we can reduce the search for a model of cp to a set 
of ultimately periodic models only, as it is possible to prove that, for each satisfiable ABB-formula, there 
exist an ultimately periodic model M* = (I(N), V*) and an interval [X(p,y(p] such that M, [X(p,t)(p] Ih cp, 
Ucp < Pte, and Per ^ me, where rae is the number of (B)- and (B)-formulas in Cl((p). To guess the 
non-periodic part of the model, the algorithm for satisfiability checking of AABB formulas over finite 
linear orders can be used IllSfl . Then, the algorithm for satisfiability checking of ABB formulas over 
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Complexity class: 

1: Undecidable 

2; Non primitive recursive 

3: EXPSPACE-complete 

4: NEXETIME-complele 

5: NP-complete 




Figure 3: Hasse diagram of all fragments of AABB and AAEE over the natural numbers. 



N 111911 can be applied to check whether the guessed prefix can be extended to a complete model over 
I(N) by guessing the valuation of intervals [x,y] with x < Pre and Pre ^ y ^ Pre + Per. To prove 
termination of the algorithm, it suffices to observe that if the guessed prefix is not minimal (in the sense 
of [18]), we can shrink it into a smaller one that satisfies the minimality condition (see Proposition 2 
and Figure 3 in fTSl ). Since the number of minimal prefix models is bounded, and so is the length of 
the period, we can conclude that the satisfiability problem for ABB over N is decidable. Non-primitive 
recursiveness has been already shown in |7 |. 

In a very similar way, it is not difficult to adapt the reduction given in |[T8l to prove the undecidability 
of ABL and ABL over N. In this case, we reduce the structural termination problem for lossy counter 
automata |17| to the satisfiability problem for ABL and ABL. Since the universal modality [U] can be 
expressed in ABL and ABL as [U](p = cp A[L]([A](pA[A][A](p), one can repeat the entire construction 
from 08 1 to encode an infinite computation of the lossy counter automata, using (L) to impose the 
required properties on final states. 
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